Trojan OnLineGames – ksuser.dll – 9d5b227b5a6e7f07a9c11016f691cdb1

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan OnLineGames
Also known as: Trojan Generic, Backdoor PcClien
SHA256: c949ef538d04a898ccecda4b23be950b7faaf1cd444a3d42cf1d8c735e80392f
SHA1: 2ac7073e958f16b9741c258691edfe25ece1c1fa
MD5: 9d5b227b5a6e7f07a9c11016f691cdb1
File size: 51200 bytes

Created files:

%SysDir%\dllcache\ksuser.dll – Trojan OnLineGames
%SysDir%\sysapp2.dll – Trojan OnLineGames
%SysDir%\yuksuser.dll – Trojan OnLineGames
%SysDir%\yumidimap.dll – Trojan OnLineGames

Trojan OnLineGames created autostart registry keys:

HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Ime File: CHINASOUGOU.IME
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout Text: ????(???)???
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout File: kbdus.dll
HKLM\System\CurrentControlSet\Services\cryptsvc\Start: 04000000

Leave a Reply